CVE-2009-0886
MEDIUM
5.0
CVSS Severity Score
Vulnerability Description
Directory traversal vulnerability in login.php in OneOrZero Helpdesk 1.6.5.7 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the default_language parameter.
Affected Platforms (CPE)
π¦
Oneorzero
Oneorzero Helpdesk
<= 1.6.5.7π¦
Oneorzero
Oneorzero Helpdesk
= 1.4_rc4π¦
Oneorzero
Oneorzero Helpdesk
= 1.6π¦
Oneorzero
Oneorzero Helpdesk
= 1.6.3π¦
Oneorzero
Oneorzero Helpdesk
= 1.6.3.0π¦
Oneorzero
Oneorzero Helpdesk
= 1.6.4π¦
Oneorzero
Oneorzero Helpdesk
= 1.6.4.1π¦
Oneorzero
Oneorzero Helpdesk
= 1.6.4.2π¦
Oneorzero
Oneorzero Helpdesk
= 1.6.5.3π¦
Oneorzero
